well first of all, change the passwd on the compromised account
then set the relaydomains parameter
http://serverfault.com/questions/335455/how-to-set-exim4-to-send-email-anywhere-but-only-from-authorised-users
so they can't forge the from address too much.
--
Martin Hepworth, CISSP
Oxford, UK
On 16 August 2012 05:35, Sergio <secmas@???> wrote:
> Hello List,
> would you be very kind to share a code on how to check at SMTP delivery
> that the domain that is sending an email exist in the server?
>
> I have seen some hackers that managed to know the password from an account
> and then at SMTPATUH they send emails using a domain name that is not in
> the server.
>
> Or if you have a code where a mail that contains more than 10 AOL or YAHOO
> addresses could be deleted and not send?
>
> Thanks a lot in advance.
>
> Regards,
>
> Sergio Cabrera
> --
> ## List details at https://lists.exim.org/mailman/listinfo/exim-users
> ## Exim details at http://www.exim.org/
> ## Please use the Wiki with this list - http://wiki.exim.org/
>